PRIVACY POLICY FOR MINDLOOM
Effective date: 2026-04-19
Mindloom ("we", "our", "the app") is a mental wellness companion application developed for mobile devices. This Privacy Policy explains what information we handle, how we handle it, and the choices you have. By using Mindloom, you agree to this Policy.
1. WHO WE ARE
Mindloom is published by the developer of the "Mindloom: AI Wellness Coach" application listed on Google Play under the package name com.mindloom.ai.app. You can contact us at support@mindloom.app for any privacy request.
2. INFORMATION WE COLLECT
A. Information stored only on your device.
The following data is created and stored locally on your device inside a secure local database. It never leaves your device unless you explicitly opt in to a purchase verification feature described in section 3.
Profile. Name you enter during onboarding, primary wellness concern, preferred language, reminder time, and theme preference.
Mood logs. Mood selections, intensity ratings, trigger tags, and optional notes you add.
Journal entries. Free-writing entries, AI-prompted entries, and CBT thought records you choose to save.
Breathing session history. Counts of completed sessions.
Gratitude entries. Short notes you add to the gratitude jar.
Chat history. Messages you exchange with the AI companion.
Check-in state. Streak counts, last check-in date, and credit balance.
App preferences. Notification toggles, selected locale, and other UI settings.
B. Information sent to third-party services.
Mindloom uses a small number of third-party services to deliver specific features. Only the minimum data required for each feature is transmitted.
AI content generation. When you choose to chat, request an affirmation, request a journaling prompt, or generate a weekly report, the relevant input (for example: mood selection, journal context, chat history) is sent to our AI provider (GROQ, operated by Groq Inc.) for processing. The AI provider returns a text response and does not retain the content for training. No personal identifier such as your name, email, or device ID is sent along with AI requests.
Google Play Billing. When you buy a credit pack, Google Play handles the payment. We never see or store your payment details. We receive a purchase token from Google Play that we use to verify the transaction.
Purchase verification service. If you opt in to the in-app sign-in for cross-device credit restore, purchase tokens and the product SKU are sent to our purchase verification backend (api.iaphub.io). Your account on this service is limited to an account name and a password you choose. You can skip this feature entirely and still use every other part of the app.
C. Information we do NOT collect.
We do not collect your real name unless you type it into the app yourself for personalization.
We do not collect your email address. The app does not ask you to sign up.
We do not collect your phone number.
We do not collect your contacts, photos, camera, microphone, or exact location.
We do not use advertising identifiers.
We do not include any advertising SDKs.
We do not perform analytics or user tracking.
3. HOW WE USE INFORMATION
On-device data is used to display your dashboard, stream your mood history, calculate streaks, render charts, and personalize affirmations. This data remains under your control at all times.
Data sent to our AI provider is used solely to generate a response for the feature you invoked, then discarded by us after the response is delivered.
Purchase information is used to deliver credits to your account and prevent fraudulent redemption.
4. DATA RETENTION
On-device data remains for as long as you keep the app installed. Uninstalling the app removes all on-device data.
Purchase verification records are retained by our verification backend for as long as reasonably needed to support purchase restore and chargeback protection. You can request deletion by contacting us.
AI provider interactions are not retained by us. According to the AI provider's policy, short-term processing logs may exist for abuse prevention, but they are not associated with any personal identifier from Mindloom.
5. YOUR RIGHTS AND CHOICES
Delete my data. Settings contains a "Delete my data" option that permanently clears mood logs, journal entries, breathwork sessions, gratitude entries, and chat history stored on the device. Your profile, credits, and streak are kept by default so the same account is not exploited for unlimited free credits. If you also want your profile removed, simply uninstall the app.
Change your language at any time. Settings contains a language switcher that updates the app and future AI responses to your chosen language.
Notification controls. You can disable all notifications or the daily reminder at any time from Settings or system settings.
Purchase history. You can view your Google Play purchase history directly in the Play Store.
Right to access, rectify, delete, or object. If you are located in the EEA, UK, Brazil, California, or any jurisdiction granting you data subject rights, you may exercise them by contacting support@mindloom.app.
6. SECURITY
Data stored on your device is protected by your device's own security model, including screen lock and app sandboxing.
Any credentials for the optional purchase verification service are stored in the operating system's secure keystore (Android Keystore) via flutter_secure_storage.
Network calls to our AI provider and purchase verification service use HTTPS with TLS.
7. CHILDREN
Mindloom is designed for users aged 18 and older. We do not knowingly collect information from children under 18. If you are under 18, please speak with a trusted adult about mental health support options appropriate for you, or contact a local youth helpline.
8. INTERNATIONAL TRANSFERS
When data is sent to our AI provider or purchase verification backend, it may be processed in the United States or other countries where these providers operate. Providers are selected based on their commitments to data protection.
9. CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time to reflect new features or legal requirements. The "Effective date" at the top will indicate when the latest version took effect. Continued use of Mindloom after a change means you accept the updated Policy.
10. CONTACT
For privacy questions, requests, or complaints:
honghoai220900@gmail.com
If you are in the EU or UK and are not satisfied with our response, you may contact your local data protection authority.
Mindloom is a wellness companion, not a medical service. It is not a replacement for professional therapy, mental health care, or crisis intervention.